Waraxe IT Security Portal
Login or Register
November 23, 2024
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 120
Members: 0
Total: 120
Full disclosure
APPLE-SA-11-19-2024-5 macOS Sequoia 15.1.1
Local Privilege Escalations in needrestart
APPLE-SA-11-19-2024-4 iOS 17.7.2 and iPadOS 17.7.2
APPLE-SA-11-19-2024-3 iOS 18.1.1 and iPadOS 18.1.1
APPLE-SA-11-19-2024-2 visionOS 2.1.1
APPLE-SA-11-19-2024-1 Safari 18.1.1
Reflected XSS - fronsetiav1.1
XXE OOB - fronsetiav1.1
St. Poelten UAS | Path Traversal in Korenix JetPort 5601
St. Poelten UAS | Multiple Stored Cross-Site Scripting in SEH utnserver Pro
Apple web content filter bypass allows unrestricted access to blocked content (macOS/iOS/iPadOS/visionO S/watchOS)
SEC Consult SA-20241112-0 :: Multiple vulnerabilities in Siemens Energy Omnivise T3000 (CVE-2024-38876, CVE-2024-38877, CVE-2024-38878, CVE-2024-38879)
Security issue in the TX Text Control .NET Server for ASP.NET.
SEC Consult SA-20241107-0 :: Multiple Vulnerabilities in HASOMED Elefant and Elefant Software Updater
Unsafe eval() in TestRail CLI
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index
Search found 25 matches
Flash tag
PostForum:PhpBB Posted: Sun May 04, 2008 10:00 am Subject: Flash tag
shmk
Replies: 2
Views: 7381




No reply means that is it quite secure? Cool
Flash tag
PostForum:PhpBB Posted: Sun Apr 27, 2008 9:24 am Subject: Flash tag
shmk
Replies: 2
Views: 7381




I'm thinking to add a TAG that allow to insert swf in posts.

I'm not a flash expert so...
swf files can cause serious security holes in a php system? (retrive cookies, inject something bad, get an ...
DOM XSS
PostForum:Cross-site scripting aka XSS Posted: Sat Jan 19, 2008 9:13 pm Subject: DOM XSS
shmk
Replies: 1
Views: 11156




I heard people talking about DOM XSS that instead of inserting jscript in the page code use hole in the javascript using DOM inserted in the page.

Is it possible?
How does it function?
What kind ...
Link in forum
PostForum:Php Posted: Mon Jan 14, 2008 9:51 pm Subject: Link in forum
shmk
Replies: 6
Views: 12408




Attacker can first place normal picture to remote server and then post img link to it. This will pass all security tests and posting will be allowed. After that attacker just changes original image on ...
Link in forum
PostForum:Php Posted: Sun Jan 13, 2008 3:02 pm Subject: Link in forum
shmk
Replies: 6
Views: 12408




Anti-CSRF measures with random token or even with CAPTCHA (for critical requests) are very effective by my personal experience. So if you have securely written code with no potential CSRF threats, the ...
Link in forum
PostForum:Php Posted: Sun Jan 13, 2008 1:42 pm Subject: Link in forum
shmk
Replies: 6
Views: 12408




It's always possible to fool the security filters. Attacker can first place normal picture to remote server and then post img link to it. This will pass all security tests and posting will be allowed. ...
Link in forum
PostForum:Php Posted: Sun Jan 13, 2008 9:54 am Subject: Link in forum
shmk
Replies: 6
Views: 12408




What's the most secure PHP filter that allow users to insert links to sites or images in a forum without flaws in security? (regarding xss and csrf overall)
WYSIWYG are secure ?
PostForum:PhpNuke Posted: Tue Sep 14, 2004 4:49 pm Subject: WYSIWYG are secure ?
shmk
Replies: 4
Views: 13206




So I can install it without fear ? Confused
WYSIWYG are secure ?
PostForum:PhpNuke Posted: Thu Sep 09, 2004 9:10 am Subject: WYSIWYG are secure ?
shmk
Replies: 4
Views: 13206




I have heard on net that use a WYSIWYG make big holes in security... is all true ?

I have found this 2:
http://www.phpnuker.de/ (using FCKEditor)
http://www.kodetech.com/nuke70/ (using Spaw)

C ...
Who is JackFromWales4u2?
PostForum:PhpNuke Posted: Thu Sep 09, 2004 8:59 am Subject: Re: Who is JackFromWales4u2?
shmk
Replies: 8
Views: 14349




I then ran a JackFromWales4u218600 Shocked

Now the sites are 44300 Shocked
Protect varchar(255)
PostForum:Php Posted: Wed Sep 01, 2004 10:02 am Subject: Protect varchar(255)
shmk
Replies: 16
Views: 33191




I'm back !

Is possible echo smiles without make some security holes ?

To echo smiles i made this piece of code but I think is not so secure Confused Rolling Eyes Confused

$sqlsm = "SELECT code, smile_ ...
Really Nice Drop-Down Menu
PostForum:Javascript Posted: Tue Aug 10, 2004 1:20 pm Subject: Really Nice Drop-Down Menu
shmk
Replies: 1
Views: 9786




I have found a nice dropdown menu here

http://www.destroydrop.com/javascripts/tree/

I'm not a specialist in Java security, so if someone will find some security hole in this script please warnin ...
Protect varchar(255)
PostForum:Php Posted: Tue Aug 03, 2004 9:32 pm Subject: Protect varchar(255)
shmk
Replies: 16
Views: 33191




Thx again... saturday i'll leave for a 2 weeks holiday so I don't disturbe you no more Razz

Good Holiday Very Happy
Protect varchar(255)
PostForum:Php Posted: Tue Aug 03, 2004 9:27 am Subject: Protect varchar(255)
shmk
Replies: 16
Views: 33191




Confused after all this I have a REALLY stupid question (come in my mind after see some PHPNuke module)... Confused

Variable taked from database but not used later for sql INSERT or SELECT (only "echo" on pa ...
-=LOGO COMPETITION!=-
PostForum:General discussion Posted: Mon Aug 02, 2004 9:49 pm Subject: -=LOGO COMPETITION!=-
shmk
Replies: 21
Views: 38853




too late the competition is over

Doh ! Exclamation
Page 1 of 2 Goto page 1, 2Next
All times are GMT


Powered by phpBB © 2001-2008 phpBB Group



Space Raider game for Android, free download - Space Raider gameplay video - Zone Raider mobile games
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.053 Seconds